Tonight when I was rebooting my computer after uninstalling NOD32 (I wanted to switch to AVG) I got the message "DummyWindowless is not reponding" and I was a bit puzzled since it sounded very suspicious.
At the time of the reboot I was running Google Chrome and Windows Live Messenger. My system is an IBM thinkpad R51 with fully updated XP.
After the reboot I ran a complete AVG scan and found no infections. I then scanned with Malwarebyte's anti-malware and found no infections either. I haven't gotten the "DummyWindowless is not reponding" since that first time, but since I can't locate the process/program and neither AVG or Malwarebyte found anything I fear that it might still be present and hiding somewhere on my system.
I've googled "DummyWindowless" but nobody really seems to know what it is or what it does, so my hope is that someone on these forums can help me out. I've attached the MBAM, RootRepeal and the two OLT logs.
MBAM
Malwarebytes' Anti-Malware 1.40 Database version: 2717 Windows 5.1.2600 Service Pack 3 30-08-2009 20:51:44 mbam-log-2009-08-30 (20-51-44).txt Scan type: Quick Scan Objects scanned: 103785 Time elapsed: 7 minute(s), 25 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 0 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: (No malicious items detected)
RootRepeal
ROOTREPEAL (c) AD, 2007-2009 ================================================== Scan Start Time: 2009/08/30 22:21 Program Version: Version 1.3.5.0 Windows Version: Windows XP SP3 ================================================== Drivers ------------------- Name: 00000062 Image Path: \Driver\00000062 Address: 0x00000000 Size: 0 File Visible: No Signed: - Status: - Name: aj1f6v6x.SYS Image Path: C:\WINDOWS\System32\Drivers\aj1f6v6x.SYS Address: 0xF6699000 Size: 303104 File Visible: No Signed: - Status: - Name: Cdfs Image Path: \FileSystem\Cdfs Address: 0xED3BA000 Size: 66048 File Visible: No Signed: - Status: Hidden from the Windows API! Name: dump_atapi.sys Image Path: C:\WINDOWS\System32\Drivers\dump_atapi.sys Address: 0xEE087000 Size: 98304 File Visible: No Signed: - Status: - Name: dump_WMILIB.SYS Image Path: C:\WINDOWS\System32\Drivers\dump_WMILIB.SYS Address: 0xF7AD9000 Size: 8192 File Visible: No Signed: - Status: - Name: rootrepeal.sys Image Path: C:\WINDOWS\system32\drivers\rootrepeal.sys Address: 0xECF0C000 Size: 49152 File Visible: No Signed: - Status: - SSDT ------------------- #: 041 Function Name: NtCreateKey Status: Hooked by "sptd.sys" at address 0xf74540b0 #: 071 Function Name: NtEnumerateKey Status: Hooked by "sptd.sys" at address 0xf745984c #: 073 Function Name: NtEnumerateValueKey Status: Hooked by "sptd.sys" at address 0xf7459bec #: 119 Function Name: NtOpenKey Status: Hooked by "sptd.sys" at address 0xf7454090 #: 160 Function Name: NtQueryKey Status: Hooked by "sptd.sys" at address 0xf7459cc4 #: 177 Function Name: NtQueryValueKey Status: Hooked by "sptd.sys" at address 0xf7459b44 #: 247 Function Name: NtSetValueKey Status: Hooked by "sptd.sys" at address 0xf7459d56 ==EOF==
OLT.txt
OTL logfile created on: 30-08-2009 22:27:43 - Run 1 OTL by OldTimer - Version 3.0.10.7 Folder = C:\Documents and Settings\Jonas B. Mortensen\Skrivebord Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.11) Locale: 00000406 | Country: Danmark | Language: DAN | Date Format: dd-MM-yyyy 758,42 Mb Total Physical Memory | 390,16 Mb Available Physical Memory | 51,44% Memory free 1,81 Gb Paging File | 1,43 Gb Available in Paging File | 79,02% Paging File free Paging file location(s): C:\pagefile.sys 1140 2280 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programmer Drive C: | 32,98 Gb Total Space | 1,55 Gb Free Space | 4,71% Space Free | Partition Type: NTFS Drive D: | 103,88 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: UDF E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: JBM Current User Name: Jonas B. Mortensen Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: On Skip Microsoft Files: On File Age = 14 Days Output = Standard Quick Scan [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2004-02-26 11:26:00 | 00,057,344 | ---- | M] () -- C:\WINDOWS\System32\ibmpmsvc.exe PRC - [2005-02-18 17:03:38 | 00,086,016 | ---- | M] (Intel Corporation) -- C:\Programmer\Intel\Wireless\Bin\EvtEng.exe PRC - [2005-02-18 17:05:30 | 00,360,521 | ---- | M] (Intel Corporation ) -- C:\Programmer\Intel\Wireless\Bin\S24EvMon.exe PRC - [2009-03-10 14:18:14 | 00,968,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\WgaTray.exe PRC - [2008-04-14 18:05:49 | 01,034,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE PRC - [2009-08-12 09:59:43 | 00,297,752 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programmer\AVG\AVG8\avgwdsvc.exe PRC - [2008-07-25 03:17:02 | 00,069,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe PRC - [2004-03-19 23:21:10 | 00,339,968 | ---- | M] () -- C:\Programmer\IBM\IBM Rapid Restore Ultra\rrpcsb.exe PRC - [2009-03-08 21:19:15 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Programmer\Java\jre6\bin\jqs.exe PRC - [2007-11-27 12:44:32 | 00,045,056 | ---- | M] (DHI) -- C:\Programmer\Fælles filer\DHI\MikeZero\LicSvcLoc.exe PRC - [2005-03-18 13:07:00 | 00,077,824 | ---- | M] (IBM Corp.) -- C:\WINDOWS\System32\QCONSVC.EXE PRC - [2009-08-12 09:59:36 | 00,832,792 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programmer\AVG\AVG8\avgam.exe PRC - [2005-02-18 17:02:24 | 00,139,264 | ---- | M] (Intel Corporation) -- C:\Programmer\Intel\Wireless\Bin\RegSrvc.exe PRC - [2009-08-12 10:00:02 | 00,486,680 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programmer\AVG\AVG8\avgrsx.exe PRC - [2009-08-12 09:59:53 | 00,595,736 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programmer\AVG\AVG8\avgnsx.exe PRC - [2007-04-26 17:00:04 | 00,316,992 | ---- | M] (SafeNet, Inc.) -- C:\Programmer\Fælles filer\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe PRC - [2007-04-26 23:40:00 | 00,206,400 | ---- | M] (SafeNet, Inc) -- C:\Programmer\Fælles filer\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe PRC - [2003-07-12 04:19:22 | 00,032,768 | ---- | M] () -- C:\WINDOWS\System32\TpKmpSVC.exe PRC - [2004-06-16 20:53:34 | 00,110,592 | ---- | M] (Synaptics, Inc.) -- C:\Programmer\Synaptics\SynTP\SynTPLpr.exe PRC - [2004-06-16 20:53:02 | 00,512,000 | ---- | M] (Synaptics, Inc.) -- C:\Programmer\Synaptics\SynTP\SynTPEnh.exe PRC - [2004-03-27 04:06:18 | 00,102,400 | ---- | M] () -- C:\WINDOWS\System32\TpShocks.exe PRC - [2005-03-04 03:10:32 | 00,094,208 | ---- | M] () -- C:\Programmer\ThinkPad\PkgMgr\HOTKEY\TPHKMGR.exe PRC - [2003-12-25 12:04:00 | 00,208,896 | ---- | M] (IBM Corp.) -- C:\Programmer\ThinkPad\Utilities\EzEjMnAp.Exe PRC - [2004-09-02 11:05:00 | 00,127,035 | ---- | M] (Sonic Solutions) -- C:\WINDOWS\System32\dla\tfswctrl.exe PRC - [2004-03-19 22:12:10 | 00,090,112 | ---- | M] (IBM Corp.) -- C:\IBMTOOLS\UTILS\ibmprc.exe PRC - [2005-03-18 13:07:00 | 00,745,472 | ---- | M] (IBM Corp.) -- C:\Programmer\ThinkPad\ConnectUtilities\QCTRAY.EXE PRC - [2005-03-18 13:07:00 | 00,086,016 | ---- | M] (IBM Corp.) -- C:\Programmer\ThinkPad\ConnectUtilities\QCWLICON.EXE PRC - [2007-08-23 23:00:48 | 00,033,648 | ---- | M] (Microsoft Corporation) -- C:\Programmer\Microsoft Office\Office12\GrooveMonitor.exe PRC - [2008-10-13 04:41:56 | 02,454,016 | ---- | M] (Skynergy) -- C:\Programmer\Skynergy\HotKeyz\HotKeyz.exe PRC - [2006-02-07 00:39:20 | 00,094,208 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\igfxtray.exe PRC - [2004-09-07 02:03:52 | 00,077,824 | ---- | M] () -- C:\Programmer\ThinkPad\PkgMgr\HOTKEY\TPONSCR.exe PRC - [2002-01-11 01:01:34 | 00,065,536 | ---- | M] (IBM Corporation) -- C:\Programmer\ThinkPad\PkgMgr\HOTKEY_1\TpScrex.exe PRC - [2006-02-07 00:36:06 | 00,077,824 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\hkcmd.exe PRC - [2006-02-07 00:40:02 | 00,118,784 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\igfxpers.exe PRC - [2009-03-08 21:19:17 | 00,148,888 | ---- | M] (Sun Microsystems, Inc.) -- C:\Programmer\Java\jre6\bin\jusched.exe PRC - [2009-08-16 11:36:52 | 02,007,832 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programmer\AVG\AVG8\avgtray.exe PRC - [2003-10-29 13:06:00 | 00,024,576 | ---- | M] (BVRP Software) -- C:\Program Files\Digital Line Detect\DLG.exe PRC - [2009-08-30 19:05:12 | 00,514,048 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jonas B. Mortensen\Skrivebord\OTL.exe [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2008-07-25 03:16:40 | 00,034,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe -- (aspnet_state [On_Demand | Stopped]) SRV - [2009-08-12 09:59:43 | 00,297,752 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programmer\AVG\AVG8\avgwdsvc.exe -- (avg8wd [Auto | Running]) SRV - [2008-07-25 03:17:02 | 00,069,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32 [Auto | Running]) SRV - [2005-02-18 17:03:38 | 00,086,016 | ---- | M] (Intel Corporation) -- C:\Programmer\Intel\Wireless\Bin\EvtEng.exe -- (EvtEng [Auto | Running]) SRV - [2008-07-29 13:10:04 | 00,046,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe -- (FontCache3.0.0.0 [On_Demand | Stopped]) SRV - [2008-04-14 18:05:31 | 00,038,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll -- (helpsvc [Auto | Running]) SRV - [2004-03-19 23:21:10 | 00,339,968 | ---- | M] () -- C:\Programmer\IBM\IBM Rapid Restore Ultra\rrpcsb.exe -- (IBM Rapid Restore Ultra Service [Auto | Running]) SRV - [2004-02-26 11:26:00 | 00,057,344 | ---- | M] () -- C:\WINDOWS\System32\ibmpmsvc.exe -- (IBMPMSVC [Auto | Running]) SRV - [2008-07-29 11:24:50 | 00,881,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -- (idsvc [Unknown | Stopped]) SRV - [2008-04-14 18:05:23 | 00,028,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\irmon.dll -- (Irmon [Auto | Running]) SRV - [2009-03-08 21:19:15 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Programmer\Java\jre6\bin\jqs.exe -- (JavaQuickStarterService [Auto | Running]) SRV - [2007-11-27 12:44:32 | 00,045,056 | ---- | M] (DHI) -- C:\Programmer\Fælles filer\DHI\MikeZero\LicSvcLoc.exe -- (LicSvcLoc [Auto | Running]) SRV - [2007-08-23 22:59:20 | 00,068,464 | ---- | M] (Microsoft Corporation) -- C:\Programmer\Microsoft Office\Office12\GrooveAuditService.exe -- (Microsoft Office Groove Audit Service [On_Demand | Stopped]) SRV - [2008-07-29 11:16:38 | 00,132,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -- (NetTcpPortSharing [Disabled | Stopped]) SRV - [2007-08-23 19:19:12 | 00,443,776 | ---- | M] (Microsoft Corporation) -- C:\Programmer\Fælles filer\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv [On_Demand | Stopped]) SRV - [2006-10-26 06:03:08 | 00,145,184 | ---- | M] (Microsoft Corporation) -- C:\Programmer\Fælles filer\Microsoft Shared\Source Engine\OSE.EXE -- (ose [On_Demand | Stopped]) SRV - [2009-04-02 20:23:46 | 00,032,256 | ---- | M] () -- C:\WINDOWS\System32\drivers\psasrv.exe -- (PsaSrv [On_Demand | Stopped]) SRV - [2005-03-18 13:07:00 | 00,077,824 | ---- | M] (IBM Corp.) -- C:\WINDOWS\System32\QCONSVC.EXE -- (QCONSVC [Auto | Running]) SRV - [2005-02-18 17:02:24 | 00,139,264 | ---- | M] (Intel Corporation) -- C:\Programmer\Intel\Wireless\Bin\RegSrvc.exe -- (RegSrvc [Auto | Running]) SRV - [2005-02-18 17:05:30 | 00,360,521 | ---- | M] (Intel Corporation ) -- C:\Programmer\Intel\Wireless\Bin\S24EvMon.exe -- (S24EventMonitor [Auto | Running]) SRV - [2007-04-26 17:00:04 | 00,316,992 | ---- | M] (SafeNet, Inc.) -- C:\Programmer\Fælles filer\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe -- (SentinelKeysServer [Auto | Running]) SRV - [2007-04-26 23:40:00 | 00,206,400 | ---- | M] (SafeNet, Inc) -- C:\Programmer\Fælles filer\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe -- (SentinelProtectionServer [Auto | Running]) SRV - [2003-07-12 04:19:22 | 00,032,768 | ---- | M] () -- C:\WINDOWS\System32\TpKmpSVC.exe -- (TpKmpSVC [Auto | Running]) SRV - [2006-11-15 02:30:12 | 00,914,432 | ---- | M] (Microsoft Corporation) -- C:\Programmer\Windows Media Player\WMPNetwk.exe -- (WMPNetworkSvc [On_Demand | Stopped]) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ IE - URLSearchHook: *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - Reg Error: Key error. File not found IE - URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Programmer\AVG\AVG8\Toolbar\IEToolbar.dll () IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "unmht:///file.5/C:/Documents%20and%20Settings/Jonas%20B.%20Mortensen/Dokumenter/Downloads/DNS_v10_Preferred/DNS_v10_Preferred/ULTIMATE_NOOB_FIGHTERz___Illustrated%20HowTo%20Install___Nuance.DNSP.v10.mht/" FF - prefs.js..extensions.enabledItems: [email protected]:1.0 FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.0 FF - prefs.js..extensions.enabledItems: {f759ca51-3a91-4dd1-ae78-9db5eee9ebf0}:5.2.0 FF - prefs.js..extensions.enabledItems: {85E85FF9-E50C-42DE-8A3D-61485FD6C8DB}:1.4 FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:8.5 FF - prefs.js..extensions.enabledItems: avg@igeared:2.507.024.001 FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.1 FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009-08-30 22:10:59 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Programmer\Java\jre6\lib\deploy\jqs\ff [2009-04-02 15:08:57 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Programmer\AVG\AVG8\Firefox [2009-08-12 10:04:29 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Firefox\Extensions\\avg@igeared: C:\Programmer\AVG\AVG8\Toolbar\Firefox\avg@igeared [2009-08-12 10:04:39 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.0.1\extensions\\Components: C:\Programmer\Mozilla Firefox\components [2009-06-17 14:06:30 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.0.1\extensions\\Plugins: C:\Programmer\Mozilla Firefox\plugins [2009-06-17 14:05:24 | 00,000,000 | ---D | M] [2009-06-17 14:06:31 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\mozilla\Extensions [2009-06-17 14:06:31 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} [2009-08-25 15:53:48 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\mozilla\Firefox\Profiles\2yhsvfwx.default\extensions [2009-06-17 14:11:58 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\mozilla\Firefox\Profiles\2yhsvfwx.default\extensions\{f759ca51-3a91-4dd1-ae78-9db5eee9ebf0} [2009-08-25 15:53:48 | 00,000,000 | ---D | M] -- C:\Programmer\mozilla firefox\extensions [2009-08-24 12:49:04 | 00,000,000 | ---D | M] -- C:\Programmer\mozilla firefox\extensions\{85E85FF9-E50C-42DE-8A3D-61485FD6C8DB} [2009-06-17 14:05:25 | 00,000,000 | ---D | M] -- C:\Programmer\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2008-07-03 04:20:34 | 00,023,040 | ---- | M] (Mozilla Foundation) -- C:\Programmer\mozilla firefox\components\browserdirprovider.dll [2008-07-03 04:20:34 | 00,134,144 | ---- | M] (Mozilla Foundation) -- C:\Programmer\mozilla firefox\components\brwsrcmp.dll [2008-07-03 04:20:34 | 00,065,536 | ---- | M] (mozilla.org) -- C:\Programmer\mozilla firefox\plugins\npnul32.dll [2006-09-15 01:52:16 | 00,001,525 | ---- | M] () -- C:\Programmer\mozilla firefox\searchplugins\amazon-co-uk.xml [2006-07-05 20:47:38 | 00,002,193 | ---- | M] () -- C:\Programmer\mozilla firefox\searchplugins\answers.xml [2009-08-25 15:53:45 | 00,001,489 | ---- | M] () -- C:\Programmer\mozilla firefox\searchplugins\avg_igeared.xml [2008-03-08 11:35:22 | 00,001,534 | ---- | M] () -- C:\Programmer\mozilla firefox\searchplugins\creativecommons.xml [2008-03-08 11:35:22 | 00,002,642 | ---- | M] () -- C:\Programmer\mozilla firefox\searchplugins\eBay.xml [2008-04-16 06:08:20 | 00,001,706 | ---- | M] () -- C:\Programmer\mozilla firefox\searchplugins\google.xml [2008-03-10 23:26:58 | 00,001,178 | ---- | M] () -- C:\Programmer\mozilla firefox\searchplugins\wikipedia-da.xml [2006-09-15 01:52:16 | 00,000,799 | ---- | M] () -- C:\Programmer\mozilla firefox\searchplugins\yahoo-dk.xml O1 HOSTS File: (723 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programmer\Fælles filer\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Programmer\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Programmer\AVG\AVG8\avgssie.dll (AVG Technologies CZ, s.r.o.) O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\dla\tfswshx.dll (Sonic Solutions) O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Programmer\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O2 - BHO: (Hjælp til tilmelding til Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmer\Fælles filer\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) O2 - BHO: (Babylon IE plugin) - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - C:\Programmer\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.) O2 - BHO: (AVG Security Toolbar BHO) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Programmer\AVG\AVG8\Toolbar\IEToolbar.dll () O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programmer\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programmer\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.) O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Programmer\AVG\AVG8\Toolbar\IEToolbar.dll () O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Programmer\AVG\AVG8\Toolbar\IEToolbar.dll () O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Programmer\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AVG8_TRAY] C:\Programmer\AVG\AVG8\avgtray.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [Babylon Client] C:\Programmer\Babylon\Babylon-Pro\Babylon.exe (Babylon Ltd.) O4 - HKLM..\Run: [BMMGAG] C:\Programmer\ThinkPad\Utilities\PWRMONIT.DLL (IBM Corp.) O4 - HKLM..\Run: [BMMLREF] C:\Programmer\ThinkPad\Utilities\BMMLREF.EXE () O4 - HKLM..\Run: [BMMMONWND] C:\Programmer\ThinkPad\Utilities\BATINFEX.DLL (IBM Corp.) O4 - HKLM..\Run: [dla] C:\WINDOWS\System32\dla\tfswctrl.exe (Sonic Solutions) O4 - HKLM..\Run: [EZEJMNAP] C:\Programmer\ThinkPad\Utilities\EzEjMnAp.Exe (IBM Corp.) O4 - HKLM..\Run: [GrooveMonitor] C:\Programmer\Microsoft Office\Office12\GrooveMonitor.exe (Microsoft Corporation) O4 - HKLM..\Run: [HotKeyz.exe Startup] C:\Programmer\Skynergy\HotKeyz\HotKeyz.exe (Skynergy) O4 - HKLM..\Run: [IBMPRC] C:\IBMTOOLS\UTILS\ibmprc.exe (IBM Corp.) O4 - HKLM..\Run: [igfxhkcmd] C:\WINDOWS\System32\hkcmd.exe (Intel Corporation) O4 - HKLM..\Run: [igfxpers] C:\WINDOWS\System32\igfxpers.exe (Intel Corporation) O4 - HKLM..\Run: [igfxtray] C:\WINDOWS\System32\igfxtray.exe (Intel Corporation) O4 - HKLM..\Run: [ISUSPM Startup] C:\Programmer\Fælles filer\InstallShield\UpdateService\ISUSPM.exe () O4 - HKLM..\Run: [ISUSScheduler] C:\Programmer\Fælles filer\InstallShield\UpdateService\issch.exe () O4 - HKLM..\Run: [QCTRAY] C:\Programmer\ThinkPad\ConnectUtilities\QCTRAY.EXE (IBM Corp.) O4 - HKLM..\Run: [QCWLICON] C:\Programmer\ThinkPad\ConnectUtilities\QCWLICON.EXE (IBM Corp.) O4 - HKLM..\Run: [S3TRAY2] C:\WINDOWS\System32\S3Tray2.exe (S3 Graphics, Inc.) O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Programmer\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.) O4 - HKLM..\Run: [SynTPEnh] C:\Programmer\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.) O4 - HKLM..\Run: [SynTPLpr] C:\Programmer\Synaptics\SynTP\SynTPLpr.exe (Synaptics, Inc.) O4 - HKLM..\Run: [TP4EX] C:\WINDOWS\System32\tp4ex.exe (IBM Corporation) O4 - HKLM..\Run: [TPHOTKEY] C:\Programmer\ThinkPad\PkgMgr\HOTKEY\TPHKMGR.exe () O4 - HKLM..\Run: [TPKMAPHELPER] C:\Programmer\ThinkPad\Utilities\TpKmapAp.exe (IBM Corp.) O4 - HKLM..\Run: [TpShocks] C:\WINDOWS\System32\TpShocks.exe () O4 - HKLM..\Run: [UC_SMB] File not found O4 - HKLM..\Run: [UC_Start] C:\Programmer\IBM\Updater\ucstartup.exe () O4 - HKLM..\Run: [UpdateManager] C:\Programmer\Fælles filer\Sonic\Update Manager\sgtray.exe (Sonic Solutions) O4 - HKCU..\Run: [Google Update] C:\Documents and Settings\Jonas B. Mortensen\Lokale indstillinger\Application Data\Google\Update\GoogleUpdate.exe (Google Inc.) O4 - HKCU..\Run: [MsnMsgr] C:\Programmer\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation) O4 - HKCU..\Run: [Skype] C:\Programmer\Skype\Phone\Skype.exe (Skype Technologies S.A.) O4 - Startup: C:\Documents and Settings\All Users\Menuen Start\Programmer\Start\Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe (BVRP Software) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Programmer\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: Translate this web page with Babylon - C:\Programmer\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.) O8 - Extra context menu item: Translate with Babylon - C:\Programmer\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.) O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programmer\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programmer\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Programmer\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O9 - Extra Button: Add to VideoGet - {88CFA58B-A63F-4A94-9C54-0C7A58E3333E} - C:\Programmer\Nuclear Coffee\VideoGet\Plugins\VideoGet_IE.dll (Nuclear Coffee Software) O9 - Extra 'Tools' menuitem : Add to &VideoGet - {88CFA58B-A63F-4A94-9C54-0C7A58E3333E} - C:\Programmer\Nuclear Coffee\VideoGet\Plugins\VideoGet_IE.dll (Nuclear Coffee Software) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programmer\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation) O9 - Extra Button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Programmer\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.) O9 - Extra 'Tools' menuitem : Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Programmer\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.) O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\System32\nwprovau.dll (Microsoft Corporation) O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone. O15 - HKCU\..Trusted Domains: danid.dk ([]https in Trusted sites) O15 - HKCU\..Trusted Domains: internet ([]about in Internet) O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} https://www-secure.symantec.com/techsupp/asa/ss/sa/sa_cabs/tgctlsr.cab (Symantec Script Runner Class) O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1238668964734 (MUWebControl Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13) O16 - DPF: {9DF01F00-08E7-4DBE-9070-94841463B3FE} https://danid.dk/csp/authenticode/csp.exe (Util Class) O16 - DPF: {CAFEEFAC-0014-0001-0000-ABCDEFFEDCBA} http://java.sun.com/products/plugin/1.4.1/jinstall-141-win.cab (Reg Error: Key error.) O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13) O16 - DPF: {DC6FEBC5-0A2D-458A-A01B-5DB15EEC4305} http://webc.brandimortensen.dk/auth/controls/IlosoftImageUpload.dll (IlosoftImageUploadCtl Class) O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Programmer\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programmer\Fælles filer\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programmer\Fælles filer\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programmer\Fælles filer\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programmer\Fælles filer\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\ipp - No CLSID value found O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programmer\Fælles filer\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Programmer\AVG\AVG8\avgpp.dll (AVG Technologies CZ, s.r.o.) O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Programmer\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp - No CLSID value found O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programmer\Fælles filer\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programmer\Fælles filer\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programmer\Fælles filer\Microsoft Shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Programmer\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programmer\Fælles filer\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Filter: - text/xml - C:\Programmer\Fælles filer\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.) O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation) O20 - Winlogon\Notify\QConGina: DllName - QConGina.dll - C:\WINDOWS\System32\QConGina.dll (IBM Corp.) O20 - Winlogon\Notify\tphotkey: DllName - tphklock.dll - C:\WINDOWS\System32\tphklock.dll () O24 - Desktop Components:0 (Min aktuelle startside) - About:Home O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Programmer\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O31 - SafeBoot: AlternateShell - cmd.exe O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-04-02 21:17:54 | 00,000,000 | -H-- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{0b44107e-37c8-11de-98ef-00166f093faa}\Shell - "" = AutoRun O33 - MountPoints2\{0b44107e-37c8-11de-98ef-00166f093faa}\Shell\Auto\command - "" = app.exe O33 - MountPoints2\{646838e4-481b-11de-98fd-00166f093faa}\Shell\AutoRun\command - "" = E:\86l2qw.bat -- File not found O33 - MountPoints2\{646838e4-481b-11de-98fd-00166f093faa}\Shell\open\Command - "" = E:\86l2qw.bat -- File not found O33 - MountPoints2\{f4576230-2039-11de-98da-00166f093faa}\Shell\AutoRun\command - "" = H:\cqxj.exe -- File not found O33 - MountPoints2\{f4576230-2039-11de-98da-00166f093faa}\Shell\open\Command - "" = H:\cqxj.exe -- File not found O33 - MountPoints2\{f457627c-2039-11de-98da-00166f093faa}\Shell\AutoRun\command - "" = F:\cqxj.exe -- File not found O33 - MountPoints2\{f457627c-2039-11de-98da-00166f093faa}\Shell\open\Command - "" = F:\cqxj.exe -- File not found O33 - MountPoints2\H\Shell - "" = AutoRun O33 - MountPoints2\H\Shell\AutoRun\command - "" = H:\setup.exe -- File not found O34 - HKLM BootExecute: (autocheck) - File not found O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation) O34 - HKLM BootExecute: (*) - File not found NetSvcs: 6to4 - Service key not found. File not found NetSvcs: Ias - Service key not found. File not found NetSvcs: Iprip - Service key not found. File not found NetSvcs: Irmon - C:\WINDOWS\System32\irmon.dll (Microsoft Corporation) NetSvcs: NWCWorkstation - Service key not found. File not found NetSvcs: Nwsapagent - Service key not found. File not found NetSvcs: WmdmPmSp - Service key not found. File not found NetSvcs: helpsvc - C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll (Microsoft Corporation) [color=#E56717]========== Files/Folders - Created Within 14 Days ==========[/color] [2009-08-30 20:54:13 | 00,000,015 | ---- | C] () -- C:\Documents and Settings\Jonas B. Mortensen\Skrivebord\settings.dat [2009-08-30 20:26:56 | 00,003,158 | ---- | C] () -- C:\Documents and Settings\Jonas B. Mortensen\Skrivebord\AVG30082009.csv [2009-08-30 19:04:58 | 00,514,048 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Jonas B. Mortensen\Skrivebord\OTL.exe [2009-08-30 19:04:41 | 00,472,064 | ---- | C] ( ) -- C:\Documents and Settings\Jonas B. Mortensen\Skrivebord\RootRepeal.exe [2009-08-30 16:17:48 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\Malwarebytes [2009-08-30 16:17:41 | 00,000,692 | ---- | C] () -- C:\Documents and Settings\All Users\Skrivebord\Malwarebytes' Anti-Malware.lnk [2009-08-30 16:17:38 | 00,038,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [2009-08-30 16:17:37 | 00,019,096 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2009-08-30 16:17:37 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes [2009-08-30 16:17:36 | 00,000,000 | ---D | C] -- C:\Programmer\Malwarebytes' Anti-Malware [2009-08-30 16:12:42 | 00,000,000 | -H-- | C] () -- C:\Documents and Settings\Jonas B. Mortensen\Dokumenter\Default.rdp [2009-08-26 14:30:14 | 00,029,918 | ---- | C] () -- C:\Documents and Settings\Jonas B. Mortensen\Dokumenter\KvitteringDesktop.docx [2009-08-26 13:13:00 | 00,267,051 | ---- | C] () -- C:\Documents and Settings\Jonas B. Mortensen\Dokumenter\ATP.pdf [2009-08-25 15:53:46 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jonas B. Mortensen\Lokale indstillinger\Application Data\AVG Security Toolbar [2009-08-25 11:05:33 | 00,001,725 | ---- | C] () -- C:\Documents and Settings\All Users\Skrivebord\Adobe Reader 9.lnk [2009-08-24 13:17:04 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jonas B. Mortensen\Dokumenter\My Downloaded Video [2009-08-24 12:48:56 | 00,000,747 | ---- | C] () -- C:\Documents and Settings\All Users\Skrivebord\VideoGet.lnk [2009-08-24 12:48:52 | 00,000,000 | ---D | C] -- C:\Programmer\Nuclear Coffee [2009-08-23 22:43:40 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jonas B. Mortensen\Dokumenter\Ny mappe [2009-08-23 13:24:19 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\Hamachi [2009-08-23 13:23:22 | 00,025,280 | ---- | C] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys [2009-08-23 13:23:21 | 00,000,628 | ---- | C] () -- C:\Documents and Settings\All Users\Skrivebord\hamachi.lnk [2009-08-23 13:23:17 | 00,000,000 | ---D | C] -- C:\Programmer\Hamachi [2009-08-17 15:28:11 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\Haihaisoft [2009-08-17 15:28:06 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\Haihaisoft Universal Player [2009-08-17 15:26:29 | 00,000,000 | ---D | C] -- C:\Programmer\Fælles filer\Real [2009-08-17 15:26:19 | 00,000,000 | ---D | C] -- C:\Programmer\Haihaisoft Universal Player [color=#E56717]========== Files - Modified Within 14 Days ==========[/color] [1 C:\WINDOWS\System32\*.tmp files] [2 C:\WINDOWS\*.tmp files] [2009-08-30 22:17:52 | 00,002,278 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2009-08-30 22:17:50 | 00,000,264 | ---- | M] () -- C:\WINDOWS\tasks\OGALogon.job [2009-08-30 22:16:37 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2009-08-30 22:16:23 | 79,533,2608 | -HS- | M] () -- C:\hiberfil.sys [2009-08-30 22:16:23 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2009-08-30 22:02:01 | 00,001,076 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1525216696-1080283228-575694307-1005UA.job [2009-08-30 21:02:01 | 00,001,024 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1525216696-1080283228-575694307-1005Core.job [2009-08-30 20:56:27 | 00,000,015 | ---- | M] () -- C:\Documents and Settings\Jonas B. Mortensen\Skrivebord\settings.dat [2009-08-30 20:26:56 | 00,003,158 | ---- | M] () -- C:\Documents and Settings\Jonas B. Mortensen\Skrivebord\AVG30082009.csv [2009-08-30 19:05:12 | 00,514,048 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jonas B. Mortensen\Skrivebord\OTL.exe [2009-08-30 19:05:02 | 00,472,064 | ---- | M] ( ) -- C:\Documents and Settings\Jonas B. Mortensen\Skrivebord\RootRepeal.exe [2009-08-30 16:17:41 | 00,000,692 | ---- | M] () -- C:\Documents and Settings\All Users\Skrivebord\Malwarebytes' Anti-Malware.lnk [2009-08-30 16:12:42 | 00,000,000 | -H-- | M] () -- C:\Documents and Settings\Jonas B. Mortensen\Dokumenter\Default.rdp [2009-08-30 10:41:56 | 40,281,795 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\incavi.avm [2009-08-28 18:53:38 | 00,073,369 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\microavi.avg [2009-08-27 10:31:25 | 00,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2009-08-26 14:30:14 | 00,029,918 | ---- | M] () -- C:\Documents and Settings\Jonas B. Mortensen\Dokumenter\KvitteringDesktop.docx [2009-08-26 14:28:39 | 00,002,503 | ---- | M] () -- C:\Documents and Settings\Jonas B. Mortensen\Skrivebord\Microsoft Office Word 2007.lnk [2009-08-26 13:13:00 | 00,267,051 | ---- | M] () -- C:\Documents and Settings\Jonas B. Mortensen\Dokumenter\ATP.pdf [2009-08-26 02:10:20 | 02,640,174 | -H-- | M] () -- C:\Documents and Settings\Jonas B. Mortensen\Lokale indstillinger\Application Data\IconCache.db [2009-08-25 23:22:40 | 00,062,976 | ---- | M] () -- C:\Documents and Settings\Jonas B. Mortensen\Lokale indstillinger\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-08-25 20:16:20 | 00,002,461 | ---- | M] () -- C:\Documents and Settings\Jonas B. Mortensen\Skrivebord\Microsoft Office Excel 2007.lnk [2009-08-25 11:05:34 | 00,001,725 | ---- | M] () -- C:\Documents and Settings\All Users\Skrivebord\Adobe Reader 9.lnk [2009-08-24 12:48:56 | 00,000,747 | ---- | M] () -- C:\Documents and Settings\All Users\Skrivebord\VideoGet.lnk [2009-08-23 13:23:22 | 00,025,280 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys [2009-08-23 13:23:21 | 00,000,628 | ---- | M] () -- C:\Documents and Settings\All Users\Skrivebord\hamachi.lnk [2009-08-18 09:20:01 | 00,000,264 | ---- | M] () -- C:\WINDOWS\tasks\OGADaily.job [color=#E56717]========== LOP Check ==========[/color] [2009-08-30 16:17:37 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\All Users\Application Data [2009-04-02 06:39:39 | 00,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{D166A25B-41F0-45EA-B10E-DE7D7B5C3455} [2009-08-12 16:43:15 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar [2009-08-30 22:19:32 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Babylon [2009-04-02 13:54:35 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DHI [2009-06-17 05:25:57 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET [2009-04-02 20:19:36 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ibm [2009-04-02 20:11:24 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Intel [2009-06-18 01:12:18 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MailFrontier [2009-07-09 11:47:54 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP [2009-06-18 10:56:47 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\VCOM [2009-08-23 13:38:39 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WinZip [2009-08-30 16:17:48 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data [2009-08-11 10:43:02 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\AVGTOOLBAR [2009-08-25 11:05:02 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\Babylon [2009-04-02 06:39:58 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\Cryptomathic [2009-07-20 23:15:33 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\dvdcss [2009-08-30 12:05:43 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\EndNote [2009-08-17 15:28:11 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\Haihaisoft [2009-08-17 15:28:24 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\Haihaisoft Universal Player [2009-08-23 20:57:15 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\Hamachi [2009-05-11 12:42:05 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\Helios [2009-07-31 02:10:14 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\IBM [2009-04-03 13:29:28 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\InterVideo [2009-05-17 02:36:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\Leadertech [2009-04-02 12:35:15 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\MathWorks [2009-08-23 18:24:22 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\mIRC [2009-08-30 15:33:40 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\uTorrent [2009-06-19 13:34:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\VCOM [2009-04-07 12:47:01 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jonas B. Mortensen\Application Data\Windows Search [2009-07-17 12:36:31 | 00,000,410 | ---- | M] () -- C:\WINDOWS\Tasks\BMMTask.job [2001-10-09 17:00:00 | 00,000,065 | RH-- | M] () -- C:\WINDOWS\Tasks\desktop.ini [2009-08-30 21:02:01 | 00,001,024 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1525216696-1080283228-575694307-1005Core.job [2009-08-30 22:02:01 | 00,001,076 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1525216696-1080283228-575694307-1005UA.job [2009-08-18 09:20:01 | 00,000,264 | ---- | M] () -- C:\WINDOWS\Tasks\OGADaily.job [2009-08-30 22:17:50 | 00,000,264 | ---- | M] () -- C:\WINDOWS\Tasks\OGALogon.job [2009-08-30 22:16:37 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\Tasks\SA.DAT [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color] [color=#A23BEC]< %systemroot%\system32\eventlog.dll >[/color] [2008-04-14 18:05:21 | 00,056,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\eventlog.dll [1 C:\WINDOWS\system32\*.tmp files] [color=#A23BEC]< %systemroot%\system32\scecli.dll >[/color] [2008-04-14 18:05:31 | 00,186,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\scecli.dll [1 C:\WINDOWS\system32\*.tmp files] [color=#A23BEC]< %systemroot%\netlogon.dll >[/color] [color=#A23BEC]< %systemroot%\system32\cngaudit.dll >[/color] [color=#A23BEC]< %systemroot%\system32\sceclt.dll >[/color] [color=#A23BEC]< %systemroot%\ntelogon.dll >[/color] [color=#A23BEC]< %systemroot%\system32\logevent.dll >[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 149 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2 @Alternate Data Stream - 116 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:F35A93AD < End of report >
Extras.txt
OTL Extras logfile created on: 30-08-2009 22:27:43 - Run 1 OTL by OldTimer - Version 3.0.10.7 Folder = C:\Documents and Settings\Jonas B. Mortensen\Skrivebord Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.11) Locale: 00000406 | Country: Danmark | Language: DAN | Date Format: dd-MM-yyyy 758,42 Mb Total Physical Memory | 390,16 Mb Available Physical Memory | 51,44% Memory free 1,81 Gb Paging File | 1,43 Gb Available in Paging File | 79,02% Paging File free Paging file location(s): C:\pagefile.sys 1140 2280 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programmer Drive C: | 32,98 Gb Total Space | 1,55 Gb Free Space | 4,71% Space Free | Partition Type: NTFS Drive D: | 103,88 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: UDF E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: JBM Current User Name: Jonas B. Mortensen Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: On Skip Microsoft Files: On File Age = 14 Days Output = Standard Quick Scan [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html [@ = htmlfile] -- C:\Programmer\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "%ProgramFiles%\IBM\Updater\jre\bin\javaw.exe" = %ProgramFiles%\IBM\Updater\jre\bin\javaw.exe:*:enabled:Java launcher -- (IBM) "%ProgramFiles%\IBM\Updater\jre\bin\java.exe" = %ProgramFiles%\IBM\Updater\jre\bin\java.exe:*:enabled:Java launcher -- (IBM) "C:\Programmer\IBM\Updater\jre\bin\java.exe" = C:\Programmer\IBM\Updater\jre\bin\java.exe:*:Enabled:Java launcher -- (IBM) "C:\Programmer\IBM\Updater\jre\bin\javaw.exe" = C:\Programmer\IBM\Updater\jre\bin\javaw.exe:*:Enabled:Java launcher -- (IBM) "%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation) "C:\Programmer\MSN Messenger\msncall.exe" = C:\Programmer\MSN Messenger\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone) -- File not found "C:\Programmer\Windows Live\Messenger\msnmsgr.exe" = C:\Programmer\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger -- (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "%ProgramFiles%\IBM\Updater\jre\bin\javaw.exe" = %ProgramFiles%\IBM\Updater\jre\bin\javaw.exe:*:enabled:Java launcher -- (IBM) "%ProgramFiles%\IBM\Updater\jre\bin\java.exe" = %ProgramFiles%\IBM\Updater\jre\bin\java.exe:*:enabled:Java launcher -- (IBM) "C:\Programmer\IBM\Updater\jre\bin\java.exe" = C:\Programmer\IBM\Updater\jre\bin\java.exe:*:Enabled:Java launcher -- (IBM) "C:\Programmer\IBM\Updater\jre\bin\javaw.exe" = C:\Programmer\IBM\Updater\jre\bin\javaw.exe:*:Enabled:Java launcher -- (IBM) "%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation) "C:\Programmer\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Programmer\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation) "C:\Programmer\Microsoft Office\Office12\GROOVE.EXE" = C:\Programmer\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove -- (Microsoft Corporation) "C:\Programmer\Microsoft Office\Office12\ONENOTE.EXE" = C:\Programmer\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation) "C:\Programmer\uTorrent\uTorrent.exe" = C:\Programmer\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.) "C:\Programmer\MSN Messenger\msncall.exe" = C:\Programmer\MSN Messenger\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone) -- File not found "C:\Programmer\Windows Live\Messenger\msnmsgr.exe" = C:\Programmer\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger -- (Microsoft Corporation) "C:\Programmer\mIRC\mirc.exe" = C:\Programmer\mIRC\mirc.exe:*:Enabled:mIRC -- (mIRC Co. Ltd.) "C:\Programmer\Java\jre6\bin\javaw.exe" = C:\Programmer\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.) "C:\Programmer\NeverwinterNights\NWN\nwmain.exe" = C:\Programmer\NeverwinterNights\NWN\nwmain.exe:*:Enabled:Neverwinter Nights -- File not found "C:\WINDOWS\system32\dpvsetup.exe" = C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test -- (Microsoft Corporation) "C:\Programmer\Bullfrog\Dungeon Keeper II\DKII.exe" = C:\Programmer\Bullfrog\Dungeon Keeper II\DKII.exe:*:Enabled:DKII -- () "C:\Programmer\AVG\AVG8\avgam.exe" = C:\Programmer\AVG\AVG8\avgam.exe:*:Enabled:avgam.exe -- (AVG Technologies CZ, s.r.o.) "C:\Programmer\AVG\AVG8\avgupd.exe" = C:\Programmer\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe -- (AVG Technologies CZ, s.r.o.) "C:\Programmer\AVG\AVG8\avgnsx.exe" = C:\Programmer\AVG\AVG8\avgnsx.exe:*:Enabled:avgnsx.exe -- (AVG Technologies CZ, s.r.o.) "C:\Programmer\Hamachi\hamachi.exe" = C:\Programmer\Hamachi\hamachi.exe:*:Enabled:Hamachi -- (LogMeIn Inc.) "C:\Programmer\Bullfrog\Dungeon Keeper II\DKII 1.73.exe" = C:\Programmer\Bullfrog\Dungeon Keeper II\DKII 1.73.exe:*:Enabled:DKII 1.73 -- () "C:\Programmer\Mozilla Firefox\firefox.exe" = C:\Programmer\Mozilla Firefox\firefox.exe:*:Enabled:Firefox -- (Mozilla Corporation) "C:\Programmer\Skype\Phone\Skype.exe" = C:\Programmer\Skype\Phone\Skype.exe:*:Enabled:Skype. Take a deep breath -- (Skype Technologies S.A.) "C:\Programmer\Java\jre6\bin\java.exe" = C:\Programmer\Java\jre6\bin\java.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.) [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{02E89EFC-7B07-4D5A-AA03-9EC0902914EE}" = VC 9.0 Runtime "{09DA4F91-2A09-4232-AB8C-6BC740096DE3}" = Sonic Update Manager "{0D499481-22C6-4B25-8AC2-6D3F6C885FB9}" = OpenOffice.org Installer 1.0 "{1007F41F-7D69-468E-8017-3849A5A973C2}" = IBM ThinkVantage Technologies Welcome Message "{11783F13-C3A9-44A8-929B-21A476F65272}" = IBM Rescue and Recovery with Rapid Restore "{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}" = IBM DLA "{1D14373E-7970-4F2F-A467-ACA4F0EA21E3}" = Google Earth "{1F7CCFA3-D926-4882-B2A5-A0217ED25597}" = PC-Doctor for Windows "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Overførselsværktøj til Windows Live "{2111B23F-7FDA-4A41-8309-E5A1663CA296}" = IBM ThinkPad-tastaturtilpasningsprogram "{22B71A00-4DED-11D4-A5E5-0004AC564F43}" = IBM Access Connections "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{23FB368F-1399-4EAC-817C-4B83ECBE3D83}" = mProSafe "{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 13 "{26BD75C5-82D3-4272-8D4D-9DE7AC51DB76}" = OGA Notifier 1.7.0105.35.0 "{28DA872A-0848-48CF-B749-19A198157A2A}" = mDriver "{291F5AFC-EFF5-44B5-AB9D-6A855C2D4815}" = Windows Live Messenger "{350C9406-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform "{41E496B5-47F4-11D6-9BBB-00E0987BB2CD}" = USB PC Camera 301P "{47985AEA-2CA2-3344-851E-BA4DC9101C68}" = Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - DAN "{5792FDD7-49C4-4920-B339-F5F16142D7BE}" = Windows Live Essentials "{5A180ED5-0AC1-410A-B790-5E0319CD0A93}" = Sentinel Protection Installer 7.4.0 "{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}" = Skype™ 3.2 "{62B74257-2E1B-48FB-843C-0FBA43FE1327}" = Sentinel System Driver Installer 7.4.0 "{6C72E14A-C1F3-45E5-8810-83CE3C19ED63}" = IBM 32-bit Runtime Environment for Java 2, v1.4.1 "{6CE96A14-61E2-48CC-837E-22710A953ADE}" = IBM Themes "{6DE14BE4-6F04-4935-8ABD-A0A19FE2E55A}" = mCore "{72806716-7088-41B2-8FA6-717A2A164DAB}" = IBM's aktive beskyttelsessystem "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{82512BC9-BD5D-4C50-BE4D-B98E7DF78687}" = Guiden IBM ThinkPad UltraNav "{8745DEAB-1126-42F5-9585-C66D5497B47B}" = EMEA Wallpaper "{87F7773C-EC9C-461A-AA7B-4AF8EF54DF49}" = EndNote X1 "{8A708DD8-A5E6-11D4-A706-000629E95E20}" = Intel(R) Extreme Graphics 2 Driver "{8B928BA1-EDEC-4227-A2DA-DD83026C36F5}" = mPfMgr "{8BADD53C-3A6D-4D22-B8C5-56ACD699C17D}" = Digital Signatur "{8D815BF3-2399-459C-B121-49373FEFB9E8}" = IBM Update Connector "{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard "{90120000-0010-0406-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Danish) 12 "{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12 "{90120000-0015-0406-0000-0000000FF1CE}" = Microsoft Office Access MUI (Danish) 2007 "{90120000-0015-0406-0000-0000000FF1CE}_OMUI.da-dk_{C0223E33-0993-416D-A389-3AD29D4BE333}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007 "{90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0016-0406-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Danish) 2007 "{90120000-0016-0406-0000-0000000FF1CE}_OMUI.da-dk_{C0223E33-0993-416D-A389-3AD29D4BE333}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007 "{90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0017-0406-0000-0000000FF1CE}" = Microsoft Office SharePoint Designer MUI (Danish) 2007 "{90120000-0017-0406-0000-0000000FF1CE}_OMUI.da-dk_{8B051E89-F509-438E-BB1D-5FF70B5BF872}" = Microsoft Office SharePoint Designer 2007 Service Pack 1 (SP1) "{90120000-0018-0406-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Danish) 2007 "{90120000-0018-0406-0000-0000000FF1CE}_OMUI.da-dk_{C0223E33-0993-416D-A389-3AD29D4BE333}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007 "{90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0019-0406-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Danish) 2007 "{90120000-0019-0406-0000-0000000FF1CE}_OMUI.da-dk_{C0223E33-0993-416D-A389-3AD29D4BE333}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007 "{90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001A-0406-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Danish) 2007 "{90120000-001A-0406-0000-0000000FF1CE}_OMUI.da-dk_{C0223E33-0993-416D-A389-3AD29D4BE333}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007 "{90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001B-0406-0000-0000000FF1CE}" = Microsoft Office Word MUI (Danish) 2007 "{90120000-001B-0406-0000-0000000FF1CE}_OMUI.da-dk_{C0223E33-0993-416D-A389-3AD29D4BE333}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007 "{90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001F-0406-0000-0000000FF1CE}" = Microsoft Office Proof (Danish) 2007 "{90120000-001F-0406-0000-0000000FF1CE}_OMUI.da-dk_{AAA2F315-90E9-40B3-8F83-4E52A5B461B2}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_OMUI.da-dk_{2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{3EC77D26-799B-4CD8-914F-C1565E796173}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001F-0409-0000-0000000FF1CE}_OMUI.da-dk_{3EC77D26-799B-4CD8-914F-C1565E796173}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{430971B1-C31E-45DA-81E0-72C095BAB72C}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007 "{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{F7A31780-33C4-4E39-951A-5EC9B91D7BF1}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-002C-0406-0000-0000000FF1CE}" = Microsoft Office Proofing (Danish) 2007 "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{BEE75E01-DD3F-4D5F-B96C-609E6538D419}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0044-0406-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Danish) 2007 "{90120000-0044-0406-0000-0000000FF1CE}_OMUI.da-dk_{C0223E33-0993-416D-A389-3AD29D4BE333}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007 "{90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-006E-0406-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Danish) 2007 "{90120000-006E-0406-0000-0000000FF1CE}_OMUI.da-dk_{C378B07F-6A3F-44DB-B340-AADCED1A3B4C}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{FAD8A83E-9BAC-4179-9268-A35948034D85}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-00A1-0406-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Danish) 2007 "{90120000-00A1-0406-0000-0000000FF1CE}_OMUI.da-dk_{C0223E33-0993-416D-A389-3AD29D4BE333}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007 "{90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-00BA-0406-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Danish) 2007 "{90120000-00BA-0406-0000-0000000FF1CE}_OMUI.da-dk_{C0223E33-0993-416D-A389-3AD29D4BE333}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007 "{90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0100-0406-0000-0000000FF1CE}" = Microsoft Office O MUI (Danish) 2007 "{90120000-0100-0406-0000-0000000FF1CE}_OMUI.da-dk_{C0223E33-0993-416D-A389-3AD29D4BE333}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0101-0406-0000-0000000FF1CE}" = Microsoft Office X MUI (Danish) 2007 "{90120000-0101-0406-0000-0000000FF1CE}_OMUI.da-dk_{C0223E33-0993-416D-A389-3AD29D4BE333}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007 "{90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007 "{90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISE_{FAD8A83E-9BAC-4179-9268-A35948034D85}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007 "{90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1) "{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}" = InterVideo WinDVD "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{9541FED0-327F-4DF0-8B96-EF57EF622F19}" = IBM RecordNow! "{95774351-6087-3A3B-8CA8-70BEE49D2BD5}" = Google Gears "{973F8409-F8DA-4A40-ACB4-12B02F3399D7}" = Microsoft .NET Framework 1.1 Danish Language Pack "{9CC89556-3578-48DD-8408-04E66EBEF401}" = mXML "{A040AC77-C1AA-4CC9-8931-9F648AF178F6}" = VC 9.0 Runtime "{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI "{A279AE01-6128-4BDE-A7D8-2A38F978213D}" = MIKE Zero "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{AC76BA86-7AD7-1030-7B44-A91000000001}" = Adobe Reader 9.1.3 - Dansk "{AEE9ABDF-CFFD-4CC2-8519-E8ECEB5A2AAF}" = PENTAX USB DISK Device "{B69349AE-2D41-3708-8BA4-4DC22645CA04}" = Microsoft .NET Framework 3.5 Language Pack SP1 - dan "{B6EC7388-E277-4A5B-8C8F-71067A41BA64}" = TextPad 5 "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{DBB323CE-C23F-417E-8208-631B702DB200}" = Legat Håndbogen - Uddannelse "{DFCB15E0-969C-3E74-8654-F5978478E876}" = Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DAN "{E80F9ABB-618D-4B9E-9EA0-5BF6A7C2FE9D}" = Tilmeldingsassistent til Windows Live "{EA664480-3844-11D5-8C25-444553540000}" = IBM TrackPoint-hjælp til handicappede "{EC6AF20D-4376-4070-BEE4-D3A0DFF7E140}" = Access IBM "{F0BFC7EF-9CF8-44EE-91B0-158884CD87C5}" = mMHouse "{F413B3A4-EE5D-457C-BAE5-6E58D9589ED5}" = Access IBM Message Center "{FCA651F3-5BDA-4DDA-9E4A-5D87D6914CC4}" = mWlsSafe "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "AVG8Uninstall" = AVG 8.5 "Babylon" = Babylon "CNXT_MODEM_PCI_VEN_8086&DEV_24C6&SUBSYS_05591014" = IBM Integrated 56K Modem "Digital Signatur" = Digital Signatur "Dungeon Keeper 2" = Dungeon Keeper 2 "EasyEject Utility" = IBM ThinkPad EasyEject-funktioner "ENTERPRISE" = Microsoft Office Enterprise 2007 "Haihaisoft Universal Player" = Haihaisoft Universal Player "Hamachi" = Hamachi 1.0.3.0 "HotKeyz_is1" = HotKeyz 2.7.2.0 "IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs "ie7" = Windows Internet Explorer 7 "InstallShield_{6C72E14A-C1F3-45E5-8810-83CE3C19ED63}" = IBM 32-bit Runtime Environment for Java 2, v1.4.1 "InstallShield_{A279AE01-6128-4BDE-A7D8-2A38F978213D}" = DHI MIKE Zero 2008 "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "MatlabR2007b" = MATLAB R2007b "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 Language Pack SP1 - dan" = Sprogpakke til Microsoft .NET Framework 3.5 SP1 - dansk "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "mIRC" = mIRC "Mozilla Firefox (3.0.1)" = Mozilla Firefox (3.0.1) "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP "NDETYMDeinstKey" = Nudansk med etymologi "NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs "OMUI.da-dk" = Microsoft Office Language Pack 2007 - Danish/dansk "Power Features" = IBM ThinkPad Maksimering af batteriydelse og strømstyring "Power Management Driver" = IBM ThinkPad Power Management Driver "PowerISO" = PowerISO "Presentation Director" = IBM ThinkPad Præsentationsstyring "ProInst" = Intel(R) PROSet/Wireless Software "PROSet" = Intel(R) PRO Network Adapters and Drivers "SynTPDeinstKey" = IBM ThinkPad UltraNav Driver "ThinkPad Configuration" = IBM ThinkPad-konfiguration "ThinkPad FullScreen Magnifier" = ThinkPad FullScreen Magnifier "ThinkPadSoftwareInstaller" = ThinkPad Software Installer "VideoGet_is1" = VideoGet "VLC media player" = VideoLAN VLC media player 0.8.6i "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows Media Player" = Windows Media Player 11 "Windows XP Service Pack" = Windows XP Service Pack 3 "WinLiveSuite_Wave3" = Windows Live Essentials "WinRAR archiver" = WinRAR 3.50 (Dansk) "WMFDist11" = Windows Media Format 11 runtime "wmp11" = Windows Media Player 11 "Word to PDF Converter_is1" = Word to PDF Converter 3.0 "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0 "XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0 [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome "uTorrent" = µTorrent [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 26-08-2009 08:32:08 | Computer Name = JBM | Source = Application Hang | ID = 1002 Description = Stoppet program OUTLOOK.EXE, version 12.0.6504.5000, stoppet modul hungapp, version 0.0.0.0, stoppet adresse 0x00000000. Error - 26-08-2009 08:32:11 | Computer Name = JBM | Source = Application Hang | ID = 1002 Description = Stoppet program OUTLOOK.EXE, version 12.0.6504.5000, stoppet modul hungapp, version 0.0.0.0, stoppet adresse 0x00000000. Error - 29-08-2009 14:22:17 | Computer Name = JBM | Source = WindowsLiveMessenger | ID = 15728647 Description = Error - 29-08-2009 14:22:17 | Computer Name = JBM | Source = WindowsLiveMessenger | ID = 15728647 Description = Error - 29-08-2009 14:54:15 | Computer Name = JBM | Source = WindowsLiveMessenger | ID = 15728647 Description = Error - 29-08-2009 14:54:15 | Computer Name = JBM | Source = WindowsLiveMessenger | ID = 15728647 Description = Error - 29-08-2009 15:44:04 | Computer Name = JBM | Source = WindowsLiveMessenger | ID = 15728647 Description = Error - 29-08-2009 15:44:04 | Computer Name = JBM | Source = WindowsLiveMessenger | ID = 15728647 Description = Error - 30-08-2009 05:45:29 | Computer Name = JBM | Source = WindowsLiveMessenger | ID = 15728647 Description = Error - 30-08-2009 05:45:29 | Computer Name = JBM | Source = WindowsLiveMessenger | ID = 15728647 Description = [ OSession Events ] Error - 25-05-2009 07:25:35 | Computer Name = JBM | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6316.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 45911 seconds with 1080 seconds of active time. This session ended with a crash. Error - 10-06-2009 06:07:31 | Computer Name = JBM | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6316.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 25008 seconds with 960 seconds of active time. This session ended with a crash. Error - 24-06-2009 06:15:36 | Computer Name = JBM | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6504.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 3316 seconds with 1320 seconds of active time. This session ended with a crash. Error - 12-08-2009 11:11:03 | Computer Name = JBM | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6504.5001, Microsoft Office Version: 12.0.6215.1000. This session lasted 484 seconds with 60 seconds of active time. This session ended with a crash. Error - 13-08-2009 04:28:37 | Computer Name = JBM | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6504.5001, Microsoft Office Version: 12.0.6215.1000. This session lasted 298 seconds with 60 seconds of active time. This session ended with a crash. Error - 13-08-2009 07:53:00 | Computer Name = JBM | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6504.5001, Microsoft Office Version: 12.0.6215.1000. This session lasted 106 seconds with 60 seconds of active time. This session ended with a crash. Error - 16-08-2009 09:58:12 | Computer Name = JBM | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6504.5001, Microsoft Office Version: 12.0.6215.1000. This session lasted 342 seconds with 60 seconds of active time. This session ended with a crash. [ System Events ] Error - 29-08-2009 20:47:59 | Computer Name = JBM | Source = W32Time | ID = 39452689 Description = Tidsprovideren NtpClient: Der opstod en fejl under DNS-opslag af den manuelt konfigurerede peer 'time.windows.com,0x1'. NtpClient forsøger DNS-opslaget igen om 15 minutter. Fejlen var: En socket-handling blev forsøgt til en vært, der ikke kunne nås. (0x80072751) Error - 29-08-2009 20:47:59 | Computer Name = JBM | Source = W32Time | ID = 39452701 Description = Tidsprovideren NtpClient er konfigureret til at hente tid fra en eller flere tidskilder, men ingen af kilderne er tilgængelige i øjeblikket. Der forsøges ikke at oprette forbindelse til en kilde i 14 minutter. NtpClient har ingen kilde til korrekt tid. Error - 29-08-2009 20:47:59 | Computer Name = JBM | Source = W32Time | ID = 39452689 Description = Tidsprovideren NtpClient: Der opstod en fejl under DNS-opslag af den manuelt konfigurerede peer 'time.windows.com,0x1'. NtpClient forsøger DNS-opslaget igen om 15 minutter. Fejlen var: En socket-handling blev forsøgt til en vært, der ikke kunne nås. (0x80072751) Error - 29-08-2009 20:47:59 | Computer Name = JBM | Source = W32Time | ID = 39452701 Description = Tidsprovideren NtpClient er konfigureret til at hente tid fra en eller flere tidskilder, men ingen af kilderne er tilgængelige i øjeblikket. Der forsøges ikke at oprette forbindelse til en kilde i 15 minutter. NtpClient har ingen kilde til korrekt tid. Error - 29-08-2009 20:47:59 | Computer Name = JBM | Source = W32Time | ID = 39452689 Description = Tidsprovideren NtpClient: Der opstod en fejl under DNS-opslag af den manuelt konfigurerede peer 'time.windows.com,0x1'. NtpClient forsøger DNS-opslaget igen om 15 minutter. Fejlen var: En socket-handling blev forsøgt til en vært, der ikke kunne nås. (0x80072751) Error - 29-08-2009 20:47:59 | Computer Name = JBM | Source = W32Time | ID = 39452701 Description = Tidsprovideren NtpClient er konfigureret til at hente tid fra en eller flere tidskilder, men ingen af kilderne er tilgængelige i øjeblikket. Der forsøges ikke at oprette forbindelse til en kilde i 15 minutter. NtpClient har ingen kilde til korrekt tid. Error - 30-08-2009 04:39:05 | Computer Name = JBM | Source = Dhcp | ID = 1000 Description = Computeren har mistet rettigheden til IP-adressen 5.134.209.231 for netværkskortet med netværksadressen 7A790586D1E7. Error - 30-08-2009 04:39:05 | Computer Name = JBM | Source = W32Time | ID = 39452689 Description = Tidsprovideren NtpClient: Der opstod en fejl under DNS-opslag af den manuelt konfigurerede peer 'time.windows.com,0x1'. NtpClient forsøger DNS-opslaget igen om 15 minutter. Fejlen var: En socket-handling blev forsøgt til en vært, der ikke kunne nås. (0x80072751) Error - 30-08-2009 04:39:05 | Computer Name = JBM | Source = W32Time | ID = 39452701 Description = Tidsprovideren NtpClient er konfigureret til at hente tid fra en eller flere tidskilder, men ingen af kilderne er tilgængelige i øjeblikket. Der forsøges ikke at oprette forbindelse til en kilde i 14 minutter. NtpClient har ingen kilde til korrekt tid. Error - 30-08-2009 04:39:10 | Computer Name = JBM | Source = Dhcp | ID = 1001 Description = Computeren fik ikke tildelt en adresse fra netværket (af DHCP-serveren) til netværkskortet med netværksadressen 7A790586D1E7. Der opstod følgende fejl: %%1223. Computeren vil fortsat forsøge at få tildelt en adresse fra netværksadresseserveren (DHCP). < End of report >
Im sorry that some of the messages in the Extras.txt appears in danish. Im running a danish version of XP, and as far as I know I can't change the language settings of the OS. But I hope you're still able to help me out.
Best of regards
Badedyret